Today an application is secured using invitro perimeter security. This is the reason for security being considered as nonfunctional requirement in software development life cycle (SDLC). In next generation Internet (NGI), where all applications will be networked, security needs to be in-vivo; security must be functions within the application. Applications running on any device, be it on a mobile or on a fixed platform - need to be security-aware using security aware software development life cycle (SaSDLC), which is the focus of this paper. We also present a tool called Suraksha that comprises of security designers' workbench and Security Testers' Workbench that helps a developer to build security-aware applications.